CVE-2025-66276: QTS
Published Jun 10, 2026
·Updated
QuTS hero is not affected.
We have already fixed the vulnerability in the following version: QTS 5.2.7.3256 build 20250913 and later
Affected Software
2 affected components
QNAP QTS<5.2.7.3256 build 20250913
QNAP QTS>=4.3.0<5.2.7.3256
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
QTSto a version that resolves this vulnerability.Fixed in QTS 5.2.7.3256 build 20250913
Event History
Jun 10, 2026
CVE Published
via MITRE·01:37 AM
Data Sourced
via MITRE·01:37 AM
RemedyDescription
Data Sourced
via NVD·03:16 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-66276?
CVE-2025-66276 has a critical severity rating of 9.2 as per the CVSS scoring system.
2
How do I fix CVE-2025-66276?
To fix CVE-2025-66276, upgrade to QTS version 5.2.7.3256 build 20250913 or later.
3
Which QNAP products are affected by CVE-2025-66276?
CVE-2025-66276 affects QNAP devices running the QTS software prior to version 5.2.7.3256.
4
Can QuTS hero users be affected by CVE-2025-66276?
No, QuTS hero is not affected by CVE-2025-66276.
5
When was CVE-2025-66276 published?
CVE-2025-66276 was published on June 10, 2026.